CVE-2016-6933
published 2016-12-15CVE-2016-6933: Adobe Experience Manager Forms versions 6.2 and earlier, LiveCycle 11.0.1, LiveCycle 10.0.4 have an input validation issue in the AACComponent that could be…
PriorityP426medium6.1CVSS 3.0
AVNACLPRNUIRSCCLILAN
EPSS
2.00%
78.5th percentile
Adobe Experience Manager Forms versions 6.2 and earlier, LiveCycle 11.0.1, LiveCycle 10.0.4 have an input validation issue in the AACComponent that could be used in cross-site scripting attacks.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| adobe | experience_manager | — | — |
| adobe | experience_manager | — | — |
| adobe | experience_manager | — | — |
| adobe | livecycle | — | — |
| adobe | livecycle | — | — |
CVSS provenance
nvdv3.06.1MEDIUMCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:P/A:N
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-qf2q-j47h-rfcj: Adobe Experience Manager Forms versions 6
ghsa_unreviewed·2022-05-17
CVE-2016-6933 [MEDIUM] CWE-79 GHSA-qf2q-j47h-rfcj: Adobe Experience Manager Forms versions 6
Adobe Experience Manager Forms versions 6.2 and earlier, LiveCycle 11.0.1, LiveCycle 10.0.4 have an input validation issue in the AACComponent that could be used in cross-site scripting attacks.
VMware
VMware ESXi, Fusion, Player, and Workstation updates address important guest privilege escalation vulnerability
vendor_vmware·2016-01-07·CVSS 6.3
CVE-2015-6933 [MEDIUM] VMware ESXi, Fusion, Player, and Workstation updates address important guest privilege escalation vulnerability
VMSA-2016-0001: VMware ESXi, Fusion, Player, and Workstation updates address important guest privilege escalation vulnerability
Important Windows-based guest privilege escalation in VMware Tools A kernel memory corruption vulnerability is present in the VMware Tools "Shared Folders" (HGFS) feature running on Microsoft Windows. Successful exploitation of this issue could lead to an escalation of privilege in the guest operating system. VMware would like to thank Dmitry Janushkevich from the Secunia Research Team for reporting this issue to us. Note: This vulnerability does not allow for privilege escalation from the guest operating system to the host. Host memory can not be manipulated from the guest operating system by exploiting this flaw. The Common Vulnerabilities and Exposures project
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2016-12-15
Published